Critical severity9.9NVD Advisory· Published Sep 23, 2026
automation-controller: automation-controller-container: automation-controller: instance group attachment to schedules and workflow job template nodes checks only read permission, allowing use of restricted (controlplane / other-tenant) instance groups and privilege escalation to control-plane code execution
CVE-2026-84638
Description
automation-controller: automation-controller-container: automation-controller: instance group attachment to schedules and workflow job template nodes checks only read permission, allowing use of restricted (controlplane / other-tenant) instance groups and privilege escalation to control-plane code execution
Affected products
1Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.